CodeLink

Vina Building, 131 Xo Viet Nghe Tinh, TP Hồ Chí Minh

Quy mô công ty : 25-99

Xem thêm

Tóm lược

25-99

Outsourcing

Việt Nam

Senior Security Engineer

CodeLink

Binh Thanh, TP Hồ Chí Minh

  • English
  • Có kinh nghiêm (Nhân viên)
  • Toàn thời gian
  • Thỏa Thuận
  • Ngày Đăng:01/04/2026
  • 1

Mô tả công việc

Tóm tắt công việc

We are looking for a Senior Security Engineer who will act as a security champion for project teams, helping identify potential security weaknesses and improve system security throughout the development lifecycle.

This role focuses on working closely with developers, DevOps engineers, and project teams to review system designs, identify vulnerabilities, and provide practical security recommendations before and during project releases.

Responsibilities

1. Security Review & Risk Identification

  • Review project architectures, applications, and infrastructure to identify potential security risks.
  • Act with a red-team mindset to identify weaknesses before production releases.
  • Perform security assessments and vulnerability reviews on applications and cloud environments.

2. Security Design Review & Threat Modeling

  • Participate in security design reviews for new systems and major architectural changes.
  • Guide teams in performing threat modeling to identify potential attack scenarios.
  • Provide recommendations to improve authentication, access control, data protection, and system security.

3. Vulnerability Management & Security Improvement

  • Identify security vulnerabilities and work with Engineering and DevOps teams to resolve them.
  • Support teams in implementing security improvements across application code, infrastructure, and configuration.
  • Track remediation progress and ensure security issues are addressed.

4. Secure Development Practices

  • Promote secure development practices (Secure SDLC) within engineering teams.
  • Provide guidance on secure coding, secrets management, and secure system design.
  • Share security knowledge and practical best practices with developers.

5. Client Security & Compliance Support

  • Ensure project teams meet security and compliance requirements defined by clients.
  • Support project teams in responding to client security reviews.
  • Help ensure projects follow internal security policies and standards such as ISO27001.

Yêu cầu công việc

  • 5+ years of experience in security engineering, application security, DevSecOps, or infrastructure security.
  • Strong understanding of application security principles and common vulnerabilities (OWASP Top 10).
  • Experience with cloud environments (AWS, GCP, or Azure).
  • Familiarity with:
    • Authentication and authorization mechanisms
  • Secure coding practices
  • Authentication and authorization
  • Encryption and secrets management
  • Network security concepts
  • Experience with security testing tools, vulnerability scanning, or penetration testing techniques is a plus.
  • Strong English communication skills (written and verbal).
  • Strong collaboration skills to work across multiple project teams.
  • Security certifications such as Security+, CISSP, CEH, or similar are a plus.

Ngôn ngữ

  • English

    Nói: Intermediate - Đọc: Intermediate - Viết: Intermediate

Yêu cầu kỹ thuật

  • DevSecOps
  • OWASP
  • AWS
  • MS Azure
  • CEH
  • CISSP
  • GCP

Thông tin doanh nghiệp

CodeLink is an innovative and product focused development studio.

CodeLink is an innovative and product focused product development studio made up of an international mix of Product Designers and High-End Developers.

We lead our clients through the Design Sprint process, produce full user-centric UI and then work with cutting-edge technology to bring their product to market.

We focus on Agile Methodologies and Design Thinking to produce high-end Mobile & Web Applications with React, React Native, Node.JS and Ruby.